????????
???????????ASP.NET????????????ASP.NET??????????????????????ж???ο????????????????????????????????£???л???
???????????
???????????????????????????????????????????????????ó???????????????÷????????????????????????????????????
??????????????????????????????????????
??????????
??????????Web???壬??UserManagers.aspx????????????????????д??????????????????????????SqlDataReader?????????????SqlCommand???????????????
protected void Button1_Click(object sender?? EventArgs e)
{
if (txtName.Text == "" || txtPwd.Text == "" || txtConfirm.Text == "")
{
this.Page.RegisterStartupScript("ss"?? "<script>alert('??????????????')</script>");
return;
}
if (txtPwd.Text.Equals(txtConfirm.Text))
{
//??????????????
SqlConnection sqlConn = new SqlConnection(ConfigurationManager.ConnectionStrings["connection"].ConnectionString);
sqlConn.Open();
string sql = "select * from tb_user where username = '" + txtName.Text.Trim() + "'";
SqlCommand sqlCommand = new SqlCommand(sql?? sqlConn);
SqlDataReader sqlDataReader = sqlCommand.ExecuteReader();
if (sqlDataReader.Read())
{
Page.RegisterStartupScript(""?? "<script>alert('???????????')</script>");
return;
}
sqlDataReader.Close();
//???????
string strInsert = "insert into tb_user(username?? pwd?? marks) values (@username??@pwd?? @marks)";
sqlCommand = new SqlCommand(strInsert?? sqlConn);
sqlCommand.Parameters.Add("@username"?? SqlDbType.VarChar);
sqlCommand.Parameters["@username"].Value = txtName.Text;
sqlCommand.Parameters.Add("@pwd"?? SqlDbType.VarChar?? 20);
sqlCommand.Parameters["@pwd"].Value = txtPwd.Text;
sqlCommand.Parameters.Add("@marks"?? SqlDbType.VarChar?? 1000);
sqlCommand.Parameters["@marks"].Value = "zbq????";
sqlCommand.ExecuteNonQuery();
sqlConn.Close();
Page.RegisterStartupScript(""?? "<script>alert('???????')</script>");
Response.Redirect("Default.aspx?Name=" + txtName.Text + "");
}
}
????????Ч??????
????